Assess Total Risk

Use the Exposure Management dashboard to understand the risk in your cloud and on-premises environments.

What is the Exposure Management dashboard?

The Exposure Management dashboard provides security leaders with a unified view of their vulnerability risk across cloud and on-premises (on-prem) environments. By combining data from Cloud Security (InsightCloudSec) CloudVM and Vulnerability Management (InsightVM), leaders can understand remediation progress and make decisions to drive their security programs.

This dashboard provides the following sections to help you understand the risk data from your environments:

  • Key Performance Indicators help you understand your risk posture at a glance by displaying the latest metric, how it has changed over time, and link to details.
  • Risk overview tracks vulnerability risk trends across cloud and on-prem environments.
  • Remediation progress provides data to evaluate the efficiency and effectiveness of your remediation activities at reducing vulnerability risk.
  • Environment trends displays data for changes in your cloud and on-prem environments that impact the vulnerability risk score.
  • Accepted risk monitors how much on-prem risk has been accepted through vulnerability exceptions.
  • Accountability identifies potential gaps in ownership of assets to drive remediation.

How is risk calculated?

The Command Platform uses a normalized risk score to make it easier to consume and communicate risk to your stakeholders. Normalized risk scoring aggregates the total risk of all vulnerabilities and assessed assets within the scope defined by the filters, taking into account the following vulnerability and asset attributes, and normalizes to a range of 0 to 1000.

Displaying data in Exposure Management dashboard

The Exposure Management dashboard is available from the Command Platform navigation menu. To display and view data in the Exposure Management dashboard, connect Cloud Security (InsightCloudSec) and Vulnerability Management (InsightVM) to the same Command Platform org and verify that you have assigned the correct access permissions. To get meaningful insight into your environment, you can refine the view using filters.

Vulnerability Management (InsightVM) and Cloud Security (InsightCloudSec) must be deployed to the same platform organization.

Connect data

For data to display in the Exposure Management dashboard, Cloud Security (InsightCloudSec) CloudVM or Vulnerability Management (InsightVM) must be set up and connected to the Command Platform. Depending on your product setup, the following data displays:

  • If Cloud Security (InsightCloudSec) CloudVM and Vulnerability Management (InsightVM) have not been set up, you are prompted to set up the missing data source.
  • If one of the products has been set up, the Exposure Management dashboard will load with the available data, and you are prompted to set up the missing product.
  • When both products have been set up, you will have a complete view of vulnerability risk across your cloud and on-prem environments.

Verify permissions

Specific permissions are required for Command Platform, Cloud Security (InsightCloudSec), and Vulnerability Management (InsightVM) to view the Exposure Management dashboard. To view the Exposure Management dashboard and both cloud and on-prem data, ensure you have the following permissions:

Solution Required
Command Platform Administrator (Shared)
Vulnerability Management (InsightVM) Global Administrator
Cloud Security (InsightCloudSec) One of the following roles assigned:
  • * Cloud Security (InsightCloudSec) Domain Admin**
  • * Cloud Security (InsightCloudSec) Domain Viewer**
  • * Cloud Security (InsightCloudSec) Organization Admin**

Refine the view

To refine the Exposure Management dashboard, expand the Filter section, adjust the drop-down menus as necessary, and then click Apply. The Cloud and On-Prem filters apply only to the cloud or on-prem data and cards, respectively.

Resource type filter data

Use the On-Prem Resource Type filter to view on-prem asset data from InsightVM. Use the Cloud Resource Type filter to view cloud asset data from Vulnerability Management (InsightVM) and Cloud Security (InsightCloudSec).

Reports

You can create reports from the Exposure Management dashboard, with all filters that are applied on the Exposure Management dashboard returned in the report.

Create a report

Create report
  1. Click Reports > Create Report.
  2. Select Exposure Management dashboard as the report template.
  3. Provide a name, a description, and select at least one format: PDF and HTML are allowed.
  4. Set the date range for the report.
  5. You can create a report once, or you can click + Add Schedule to set up a recurring schedule:
    1. Specify a frequency (in days, weeks, or months).
    2. Provide a date range for the report.
    3. Specify the users or email addresses that you want to share the reports with.
    4. Click Add Schedule.
  6. Click Create Report.

Name and description.

We recommend using a name and description that reflect the filters applied

View reports

After creating a report, you can view it by clicking Reporting > View Reports. This will take you to the Reports listing page. You can also go directly to Reports from the Command Platform navigation menu.

From the Reports page, you can easily search for reports by report date or date generated, sort reports, manage tags and add favorites, and select different ways to filter. Filtering options include:

  • Favorite
  • Tag
  • Owned by me
  • Owner (this allows you to filter by other Command Platform users who own reports)

You can also view reports (HTML report format) or download them (PDF format).

Understanding risk

Use the Exposure widgets on the Command Platform to help you understand the risk across your environment. This allows you to take a data-driven approach to decision making, capacity planning, and driving accountability for risk reduction across the business.

Summary KPIs

The Summary KPIs help you understand your risk posture at a glance. You can see the latest metric, how it has changed over time, and a link that will take you to the section in Exposure Management where you will find visualizations providing further details about the data supporting that metric.

Risk Overview

By understanding trends in your risk across cloud and on-prem environments related to the number and severity of vulnerabilities, you can provide meaningful risk data to stakeholders. This data may also help identify potential changes needed to your security program to lower the risk.

Remediation Progress

Remediation progress data helps you evaluate the efficiency and effectiveness of the remediation activities in your security program. Depending on the effectiveness at reducing vulnerability risk, you can adjust processes to reduce the time to remediation.

Environment Trends

Understanding trends in your attack surface coverage related to the number and severity of vulnerabilities enables you to make data-driven decisions for improved cloud and on-prem asset security.

Accepted Risk

For a more secure on-prem environment, understanding how much of your on-prem risk is accepted through vulnerability exceptions. Depending on the impact to your environment, you can determine whether changes are needed to the criteria for vulnerability exceptions. Support for cloud exceptions is planned.

Accountability

By understanding potential gaps in asset ownership, you can determine where to assign owners to drive remediation efforts and create a more secure environment by providing accountability for asset security.